Model Vulnerability Analyst.
San Francisco.
$216,000
median salary, 35% above the national average
$162,000 to $284,000. Updated for 2026.
The numbers.
Everything you need to negotiate with confidence.
San Francisco is 35% more expensive than the national average. For Model Vulnerability Analysts, that shakes out to a median of $216,000, with the full range spanning $162,000 to $284,000. Compensation scales with the breadth of vulnerability classes analyzed and depth of model architecture knowledge. Know the range before you walk in.
Salary range
Tap to place your salary
How San Francisco compares
San Francisco, CA
$216,000
Cost of living: 35% above average
National Average
$160,000
San Francisco is $56,000 above
What you should know
Here is what the Model Vulnerability Analyst market actually looks like in San Francisco. San Francisco is the epicenter of venture capital and startup innovation, consistently producing the highest tech salaries in the nation. The city's concentration of AI labs, SaaS companies, and fintech firms creates intense competition for talent. Despite remote work trends, SF still commands the steepest salary premiums for engineering and product roles. Compensation scales with the breadth of vulnerability classes analyzed and depth of model architecture knowledge. Analysts who can identify weaknesses in transformer, diffusion, and reinforcement learning models earn premiums. Experience with automated vulnerability scanning for ML models and ability to communicate risk to non-technical stakeholders drives top salary offers.
Junior vulnerability analysts begin at $100,000 to $120,000 running standard model evaluations. Mid-level analysts conducting deep architecture analysis earn $140,000 to $160,000. Senior analysts leading vulnerability research programs reach $185,000 to $210,000, with principal researchers exceeding $240,000. In San Francisco, those numbers run higher. The cost of living here is 35% above average, and employers adjust to compete.
Base salary is not the full picture. Bonuses of 12 to 20% are standard, with some organizations offering discovery bonuses for novel vulnerability classes. Equity at AI security companies adds meaningful value, typically 15 to 25% of base salary in vesting grants. And on the tax side: california's top marginal state income tax rate is 13.3%, the highest in the U.S. San Francisco has no additional city income tax, but overall tax burden remains steep. When someone quotes you $216,000, ask what the total package looks like. The gap between base and total comp is where real money hides.
On negotiation: Leverage competing offers aggressively. SF employers expect candidates to shop around, and matching or beating a rival offer is standard practice here. The range for Model Vulnerability Analysts in San Francisco runs from $162,000 to $284,000. That is not a narrow window. Where you land inside it depends almost entirely on whether you negotiate and how well you prepare.
Top industries in San Francisco
Negotiating in San Francisco
Leverage competing offers aggressively. SF employers expect candidates to shop around, and matching or beating a rival offer is standard practice here.